CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2014-5706

    Last Modified: 12 Apr 2025

    The SomNote - Journal/Memo (aka com.somcloud.somnote) application 2.1.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5707

    Last Modified: 12 Apr 2025

    The Bunny Run (aka com.stargirlgames.google.bunnyrun) application 1.1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5708

    Last Modified: 12 Apr 2025

    The Best Racing/moto Games Ranking (aka com.subapp.android.racing) application 2.2.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5711

    Last Modified: 12 Apr 2025

    The Microsoft Tech Companion (aka com.technet) application 1.0.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5712

    Last Modified: 12 Apr 2025

    The Turbo River Racing Free (aka com.tektite.androidgames.trrfree) application 1.07 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5713

    Last Modified: 12 Apr 2025

    The Telly - Watch the good stuff (aka com.telly) application 2.5.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5714

    Last Modified: 12 Apr 2025

    The Text Me! Free Texting & Call (aka com.textmeinc.textme) application 2.5.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5715

    Last Modified: 12 Apr 2025

    The Street Racing (aka com.tgb.streetracing.lite5pp) application 4.0.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5716

    Last Modified: 12 Apr 2025

    The GUNSHIP BATTLE : Helicopter 3D (aka com.theonegames.gunshipbattle) application 1.1.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    Unknown

    CVE-2014-5718

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5809, CVE-2014-5983. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-5809 and CVE-2014-5983 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5719

    Last Modified: 12 Apr 2025

    The BIKE RACING 2014 (aka com.timuzsolutions.bikeracing2014) application 1.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5720

    Last Modified: 12 Apr 2025

    The Bike Race Free - Top Free Game (aka com.topfreegames.bikeracefreeworld) application 4.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5721

    Last Modified: 12 Apr 2025

    The Touchnote Postcards (aka com.touchnote.android) application 4.2.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5722

    Last Modified: 12 Apr 2025

    The SwiftKey Keyboard + Emoji (aka com.touchtype.swiftkey) application 5.0.2.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5723

    Last Modified: 12 Apr 2025

    The Trapster (aka com.trapster.android) application 4.3.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5724

    Last Modified: 12 Apr 2025

    The Gambling Insider Magazine (aka com.triactivemedia.gambling) application @7F0801AA for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5727

    Last Modified: 12 Apr 2025

    The uTorrent Remote (aka com.utorrent.web) application 1.0.20110929 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5728

    Last Modified: 12 Apr 2025

    The Vevo - Watch HD Music Videos (aka com.vevo) application 2.0.27 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5729

    Last Modified: 12 Apr 2025

    The Viddy (aka com.viddy.Viddy) application 1.3.9 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5730

    Last Modified: 12 Apr 2025

    The russkoe TB HD (aka com.videotelecom.russkoeHD) application 3.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5731

    Last Modified: 12 Apr 2025

    The Word Search (aka com.virtuesoft.wordsearch) application 2.3.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5732

    Last Modified: 12 Apr 2025

    The Wamba - meet women and men (aka com.wamba.client) application 3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5734

    Last Modified: 12 Apr 2025

    The Buy Books (aka com.wBooksForSale) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5735

    Last Modified: 12 Apr 2025

    The Buy A Gift (aka com.wBuyAGift) application 13529.90084 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5736

    Last Modified: 12 Apr 2025

    The Buy Coins (aka com.wBuyCoins) application 0.62.13364.24150 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5737

    Last Modified: 12 Apr 2025

    The CDsoft (aka com.wCDSOFT) application 0.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5738

    Last Modified: 12 Apr 2025

    The Garfield's Defense (aka com.webprancer.google.garfieldDefense) application 1.5.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5739

    Last Modified: 12 Apr 2025

    The Garfield's Diner (aka com.webprancer.google.GarfieldsDiner) application 1.4.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5740

    Last Modified: 12 Apr 2025

    The Security - Free (aka com.webroot.security) application 3.6.0.6610 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5745

    Last Modified: 12 Apr 2025

    The FREE Pageplus Activation (aka com.wFREEPageplusActivations) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5746

    Last Modified: 12 Apr 2025

    The Government Best Jobs (aka com.wGovernmentBestJobs) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5747

    Last Modified: 12 Apr 2025

    The XFINITY Constant Guard Mobile (aka com.whitesky.mobile.android) application 3.1.140603 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5748

    Last Modified: 12 Apr 2025

    The wK12olslogin (aka com.wK12olslogin) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5749

    Last Modified: 12 Apr 2025

    The Jelly Splash (aka com.wooga.jelly_splash) application 1.11.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5750

    Last Modified: 12 Apr 2025

    The Pro Bet Tips (aka com.wProBetTips) application 0.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5753

    Last Modified: 12 Apr 2025

    The Twitter No Background (aka com.wTwitternobackground) application 0.85.13509.97828 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5754

    Last Modified: 12 Apr 2025

    The Verizon Instant Refills 24/7 (aka com.wVerizonInstantRefill247) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5755

    Last Modified: 12 Apr 2025

    The verizon (aka com.wverizonwirelessbill) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5756

    Last Modified: 12 Apr 2025

    The Buy 99 Cents Only Products (aka com.ww99CentsOnlyStores) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5757

    Last Modified: 12 Apr 2025

    The Buy Tickets (aka com.xcr.android.buytickets) application 2.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5758

    Last Modified: 12 Apr 2025

    The Yellow Pages Local Search (aka com.yellowbook.android2) application 11.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5761

    Last Modified: 12 Apr 2025

    The Zipcar (aka com.zc.android) application 3.4.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5762

    Last Modified: 12 Apr 2025

    The Cut the Rope: Time Travel (aka com.zeptolab.timetravel.free.google) application 1.3.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5763

    Last Modified: 12 Apr 2025

    The Kid Mode: Free Games + Lock (aka com.zoodles.kidmode) application 4.9.8 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5764

    Last Modified: 12 Apr 2025

    The Antivirus Free (aka com.zrgiu.antivirus) application 7.2.16.02 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5765

    Last Modified: 12 Apr 2025

    The Paint for Friends (aka de.lotumlabs.buddypainting) application 1.5.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5766

    Last Modified: 12 Apr 2025

    The Uber B2B (aka de.mobileeventguide.uberb2b) application 1.9 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5769

    Last Modified: 12 Apr 2025

    The Mobiscope Local (aka ehs.mobiscope.kernel) application 1.05 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5770

    Last Modified: 12 Apr 2025

    The Web Browser for Android (aka explore.web.browser) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014
    5.4
    Medium

    CVE-2014-5771

    Last Modified: 12 Apr 2025

    The Credit Union of Texas Mobile (aka Fi_Mobile.CUOT) application 1.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 9 Sept 2014